{"id":"https://openalex.org/W4413120818","doi":"https://doi.org/10.1109/tifs.2025.3597216","title":"Defense Against Syntactic Textual Backdoor Attacks With Token Substitution","display_name":"Defense Against Syntactic Textual Backdoor Attacks With Token Substitution","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4413120818","doi":"https://doi.org/10.1109/tifs.2025.3597216"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2025.3597216","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3597216","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5110369438","display_name":"Xianwen He","orcid":null},"institutions":[{"id":"https://openalex.org/I114027177","display_name":"University of North Carolina at Chapel Hill","ror":"https://ror.org/0130frc33","country_code":"US","type":"education","lineage":["https://openalex.org/I114027177"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Xianwen He","raw_affiliation_strings":["Statistics and Operations Research Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","Statistics and Operations Research Department, University of North Carolina at Chapel Hill, NC, USA"],"affiliations":[{"raw_affiliation_string":"Statistics and Operations Research Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]},{"raw_affiliation_string":"Statistics and Operations Research Department, University of North Carolina at Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5042931416","display_name":"Xinglin Li","orcid":"https://orcid.org/0009-0003-8723-6111"},"institutions":[{"id":"https://openalex.org/I114027177","display_name":"University of North Carolina at Chapel Hill","ror":"https://ror.org/0130frc33","country_code":"US","type":"education","lineage":["https://openalex.org/I114027177"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xinglin Li","raw_affiliation_strings":["Economics Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","Economics Department, University of North Carolina at Chapel Hill, NC, USA"],"affiliations":[{"raw_affiliation_string":"Economics Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]},{"raw_affiliation_string":"Economics Department, University of North Carolina at Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100411246","display_name":"Yao Li","orcid":"https://orcid.org/0000-0002-7195-5774"},"institutions":[{"id":"https://openalex.org/I114027177","display_name":"University of North Carolina at Chapel Hill","ror":"https://ror.org/0130frc33","country_code":"US","type":"education","lineage":["https://openalex.org/I114027177"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yao Li","raw_affiliation_strings":["Statistics and Operations Research Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","Statistics and Operations Research Department, University of North Carolina at Chapel Hill, NC, USA"],"affiliations":[{"raw_affiliation_string":"Statistics and Operations Research Department, University of North Carolina at Chapel Hill, Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]},{"raw_affiliation_string":"Statistics and Operations Research Department, University of North Carolina at Chapel Hill, NC, USA","institution_ids":["https://openalex.org/I114027177"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5000534132","display_name":"Minhao Cheng","orcid":"https://orcid.org/0000-0003-3965-4215"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Minhao Cheng","raw_affiliation_strings":["College of Information Sciences and Technology, The Pennsylvania State University, University Park, PA, USA","College of Information Sciences and Technology, Pennsylvania State University, PA, USA"],"affiliations":[{"raw_affiliation_string":"College of Information Sciences and Technology, The Pennsylvania State University, University Park, PA, USA","institution_ids":["https://openalex.org/I130769515"]},{"raw_affiliation_string":"College of Information Sciences and Technology, Pennsylvania State University, PA, USA","institution_ids":["https://openalex.org/I130769515"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5110369438"],"corresponding_institution_ids":["https://openalex.org/I114027177"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.10984135,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"20","issue":null,"first_page":"9318","last_page":"9327"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9739000201225281,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9739000201225281,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9230999946594238,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9067999720573425,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9233492612838745},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8354138135910034},{"id":"https://openalex.org/keywords/substitution","display_name":"Substitution (logic)","score":0.6803538799285889},{"id":"https://openalex.org/keywords/security-token","display_name":"Security token","score":0.6111447215080261},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.42112794518470764},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.4057697057723999},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.38722455501556396},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.26182055473327637}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9233492612838745},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8354138135910034},{"id":"https://openalex.org/C2778220771","wikidata":"https://www.wikidata.org/wiki/Q1522579","display_name":"Substitution (logic)","level":2,"score":0.6803538799285889},{"id":"https://openalex.org/C48145219","wikidata":"https://www.wikidata.org/wiki/Q1335365","display_name":"Security token","level":2,"score":0.6111447215080261},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.42112794518470764},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.4057697057723999},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.38722455501556396},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.26182055473327637}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2025.3597216","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3597216","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:repository.hkust.edu.hk:1783.1-165745","is_oa":false,"landing_page_url":"http://repository.hkust.edu.hk/ir/Record/1783.1-165745","pdf_url":null,"source":{"id":"https://openalex.org/S4306401796","display_name":"Rare & Special e-Zone (The Hong Kong University of Science and Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I200769079","host_organization_name":"Hong Kong University of Science and Technology","host_organization_lineage":["https://openalex.org/I200769079"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2255480636","display_name":null,"funder_award_id":"DMS-2152289, DMS-2134107","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W1552847225","https://openalex.org/W2535690855","https://openalex.org/W2747680751","https://openalex.org/W2753783305","https://openalex.org/W2807363941","https://openalex.org/W2934843808","https://openalex.org/W2963969878","https://openalex.org/W2971661634","https://openalex.org/W2973217491","https://openalex.org/W2982756474","https://openalex.org/W3015001695","https://openalex.org/W3046764764","https://openalex.org/W3107337211","https://openalex.org/W3128663834","https://openalex.org/W3158487140","https://openalex.org/W4214680449","https://openalex.org/W4225858632","https://openalex.org/W4288057740","https://openalex.org/W4319793479","https://openalex.org/W4386066154","https://openalex.org/W4386072179","https://openalex.org/W4391856105","https://openalex.org/W4392909875","https://openalex.org/W4401042907","https://openalex.org/W4402727117","https://openalex.org/W4406302454"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W3140988292","https://openalex.org/W4317672133","https://openalex.org/W4401407399"],"abstract_inverted_index":{"Textual":[0],"backdoor":[1,42,73],"attacks":[2],"present":[3],"a":[4,19,38,61,109,126],"substantial":[5],"security":[6],"risk":[7],"to":[8,106],"Large":[9],"Language":[10],"Models":[11],"(LLM).":[12],"It":[13],"embeds":[14],"carefully":[15],"chosen":[16],"triggers":[17,36,51],"into":[18],"victim":[20],"model":[21,29,131],"at":[22],"the":[23,28,34,89,98,104,116],"training":[24],"stage":[25],"and":[26,95,102],"makes":[27],"erroneously":[30],"predict":[31],"inputs":[32],"containing":[33],"same":[35],"as":[37,69,71],"certain":[39],"class.":[40],"Prior":[41],"defense":[43,63,128],"methods":[44],"primarily":[45],"target":[46],"special-token-based":[47,72],"triggers,":[48,124],"leaving":[49],"syntax-based":[50,68],"insufficiently":[52],"addressed.":[53],"To":[54],"fill":[55],"this":[56,58],"gap,":[57],"paper":[59],"proposes":[60],"novel":[62],"algorithm":[64,76],"that":[65],"effectively":[66],"counters":[67],"well":[70],"attacks.":[74],"The":[75],"replaces":[77],"semantically":[78],"meaningful":[79],"words":[80],"in":[81],"sentences":[82],"with":[83],"entirely":[84],"different":[85],"ones":[86],"but":[87],"preserves":[88],"syntactic":[90],"templates":[91],"or":[92],"special":[93],"tokens,":[94],"then":[96],"compares":[97],"predicted":[99],"labels":[100],"before":[101],"after":[103],"substitution":[105],"determine":[107],"whether":[108],"sentence":[110],"contains":[111],"triggers.":[112],"Experimental":[113],"results":[114],"confirm":[115],"algorithm\u2019s":[117],"performance":[118],"against":[119],"these":[120],"two":[121],"types":[122],"of":[123],"offering":[125],"comprehensive":[127],"strategy":[129],"for":[130],"integrity.":[132]},"counts_by_year":[],"updated_date":"2025-12-28T23:10:05.387466","created_date":"2025-10-10T00:00:00"}
